First published: Sat Jun 08 2024(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Plechev Andrey WP-Recall.This issue affects WP-Recall: from n/a through 16.26.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WP-Recall | <=16.26.6 | |
WP-Recall | <=16.26.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35657 is classified as a Cross-Site Request Forgery (CSRF) vulnerability which can potentially allow attackers to perform unauthorized actions.
To fix CVE-2024-35657, it is recommended to update the WP-Recall plugin to the latest version beyond 16.26.6.
CVE-2024-35657 affects WP-Recall versions from n/a through 16.26.6.
The potential impacts of CVE-2024-35657 include unauthorized actions being taken on behalf of users without their consent.
The vendor associated with CVE-2024-35657 is Plechev Andrey.